Что учесть при эксплуатации ALD Pro: подводные камни, лайфхаки и неочевидные особенности

Привет, Хабр! На связи Александр Усов, системный инженер в K2Tex. В своей предыдущей статье я уже делал подробный обзор фич ALD Pro и их особенностей, с которыми регулярно сталкиваюсь. Сегодня хочу поделиться тем, чему мы учим администраторов заказчиков: как реально эксплуатировать эту систему, а не просто развернуть и оставить на холостом ходу. Разберу, как устроены «расширенные атрибуты» и почему следует избегать одинаковых названий отделов в оргструктуре, какую функциональность ALD Pro унаследовал от FreeIPA, а в чем превзошел, и каким образом эффективнее организовать журналирование событий.

https://habr.com/ru/companies/astralinux/articles/1015410/

#ald_pro #freeipa #activedirectory #группа_астра #служба_каталогов #управление_инфраструктурой #ldap #sudo #групповые_политики #логирование_изменений

Что учесть при эксплуатации ALD Pro: подводные камни, лайфхаки и неочевидные особенности

Привет, Хабр! На связи Александр Усов, системный инженер в K2Tex. В своей предыдущей статье я уже делал подробный обзор фич ALD Pro и их особенностей, с которыми регулярно сталкиваюсь. Сегодня хочу...

Хабр

Deploy #FreeIPA Server on Cloud #VPS

Here’s a step-by-step guide to deploy FreeIPA server on cloud VPS, using the latest supported methods.
What is FreeIPA?
FreeIPA (Identity, Policy, Audit) is an open-source identity management solution designed primarily for Linux and Unix environments. It integrates several key identity management services into a centralized, easy-to-manage ...
Continued 👉 https://blog.radwebhosting.com/deploy-freeipa-server-on-cloud-vps/?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon.raddemo.host #oraclelinux #ident #hosting #rockylinux #selfhosting #podman #selfhosted

Deploy #FreeIPA Server on Cloud #VPS

Here’s a step-by-step guide to deploy FreeIPA server on cloud VPS, using the latest supported methods.
What is FreeIPA?
FreeIPA (Identity, Policy, Audit) is an open-source identity management solution designed primarily for Linux and Unix environments. It integrates several key identity management services into a centralized, easy-to-manage ...
Continued 👉 https://blog.radwebhosting.com/deploy-freeipa-server-on-cloud-vps/?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon.social #podman #selfhosted #rockylinux #ident #oraclelinux #selfhosting #hosting

Deploy #FreeIPA Server on Cloud #VPS

Here’s a step-by-step guide to deploy FreeIPA server on cloud VPS, using the latest supported methods.
What is FreeIPA?
FreeIPA (Identity, Policy, Audit) is an open-source identity management solution designed primarily for Linux and Unix environments. It integrates several key identity management services into a centralized, easy-to-manage ...
Continued 👉 https://blog.radwebhosting.com/deploy-freeipa-server-on-cloud-vps/?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon.raddemo.host #podman #oraclelinux #ident #selfhosting #selfhosted #hosting #rockylinux

Got some progress with protocol transition in #OpenSSH: if you login with any authentication mechanism that does not lead to creation of #Kerberos tickets, now you can configure your server to generate one on the user's behalf. This uses Services For User (S4U) extensions available in Active Directory and #FreeIPA implementations. There are few issues we still trying to address (and bugs found during this development) but it looks promising.

Couple demos in the next toots:

So I just found my old #Pine64 #Star64 SBC just laying around.
And after finding out that some rpm based distros now support #RISCV I decided to do something slightly cursed:
Flash the VisionFive 2 #RockyLinux v10.1 image to a small SD-Card and see if it works.
It seems to work quite well. I even managed to enroll it to my local #FreeIPA realm.

IDK what to do with it though (I already have a decent homelab). Anyone got any ideas?

today in #fedora qa:
* internal meetings (cle team, quality team sprint meeting, 1x1)
* more investigation/testing on KDE netinst hang bug, submitted a workaround - https://bodhi.fedoraproject.org/updates/FEDORA-2026-d8b30d5a3b
* found many #freeipa upgrade tests were failing, figured out it was due to an f44 update failing gating so f43 package got ahead, fixed up the update and proposed a blocker bug - https://bodhi.fedoraproject.org/updates/FEDORA-2026-b73dee6cac , https://bugzilla.redhat.com/show_bug.cgi?id=2442429
* fixed same problem in #rawhide - https://bodhi.fedoraproject.org/updates/FEDORA-2026-2fb25c3dd3

1/2

FEDORA-2026-d8b30d5a3b — bugfix update for ibus — Fedora Updates System

management of Fedora Project updates

@vermaden has shared an insightful article about 𝗡𝗮𝘁𝗶𝘃𝗲 𝗙𝗿𝗲𝗲𝗕𝗦𝗗 𝗞𝗲𝗿𝗯𝗲𝗿𝗼𝘀/𝗟𝗗𝗔𝗣 𝘄𝗶𝘁𝗵 𝗙𝗿𝗲𝗲𝗜𝗣𝗔/𝗜𝗗𝗠

Go read learn

#Kerberos #freeBSD #BSD #programming #technology #networking #LDAP #FreeIPA #IDM #reading

https://vermaden.wordpress.com/2026/02/18/native-freebsd-kerberos-ldap-with-freeipa-idm/

New 𝗡𝗮𝘁𝗶𝘃𝗲 𝗙𝗿𝗲𝗲𝗕𝗦𝗗 𝗞𝗲𝗿𝗯𝗲𝗿𝗼𝘀/𝗟𝗗𝗔𝗣 𝘄𝗶𝘁𝗵 𝗙𝗿𝗲𝗲𝗜𝗣𝗔/𝗜𝗗𝗠 article based on @Larvitz work - credit goes to him.

https://vermaden.wordpress.com/2026/02/18/native-freebsd-kerberos-ldap-with-freeipa-idm/

#verblog #freebsd #kerberos #idm #freeipa #ssh

Native FreeBSD Kerberos/LDAP with FreeIPA/IDM

I want to make this clear in the first sentence because its biggest chance that people will read it – this article is entirely based on work done by Christian Hofstede-Kuhn (Larvitz) that wro…

𝚟𝚎𝚛𝚖𝚊𝚍𝚎𝚗

New 𝗡𝗮𝘁𝗶𝘃𝗲 𝗙𝗿𝗲𝗲𝗕𝗦𝗗 𝗞𝗲𝗿𝗯𝗲𝗿𝗼𝘀/𝗟𝗗𝗔𝗣 𝘄𝗶𝘁𝗵 𝗙𝗿𝗲𝗲𝗜𝗣𝗔/𝗜𝗗𝗠 article based on @Larvitz work - credit goes to him.

https://vermaden.wordpress.com/2026/02/18/native-freebsd-kerberos-ldap-with-freeipa-idm/

#verblog #freebsd #kerberos #idm #freeipa #ssh

Native FreeBSD Kerberos/LDAP with FreeIPA/IDM

I want to make this clear in the first sentence because its biggest chance that people will read it – this article is entirely based on work done by Christian Hofstede-Kuhn (Larvitz) that wro…

𝚟𝚎𝚛𝚖𝚊𝚍𝚎𝚗